Replymessage unavailable
Google has announced the introduction of new network security features in Android 17, which are aimed at protecting users' online activity, verifying the authenticity of websites, and combating fraud. A key innovation is support for Encrypted Client Hello (ECH) technology, which encrypts the domain names of sites to which the device connects. This makes it difficult for third-party observers, including telecommunications operators, to determine the specific resources that the user is visiting. ECH will only work for sites that support this technology. For resources without such support, the ECH GREASE mechanism is used, which transmits random "fake" ECH extensions, providing a unified view of all requests.
In addition to protecting Internet connections, Android 17 strengthens the security of local Wi-Fi networks. Applications now require explicit permission to scan or connect to other devices on the local network, which prevents unauthorized collection of information about connected gadgets. For basic tasks, such as broadcasting video content to a TV, Google recommends using system tools that do not require such permissions. Additionally, the Certificate Transparency function will be activated by default. All site certificates must be registered in a public registry, which makes it difficult to use fake certificates to intercept traffic, even in the event of compromise of one of the certification authorities. Google also pays attention to eliminating vulnerabilities in legacy networks. The company plans to close a known vulnerability associated with the 2G protocol, which allowed sending phishing messages. Specific timing and geographical areas for the implementation of these functions have not yet been announced.